PT-2022-10583 · Starfish · The Rich Reviews By Starfish

Ngo Van

+1

·

Published

2022-08-05

·

Updated

2022-08-07

·

CVE-2021-36861

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Rich Reviews by Starfish plugin versions <= 1.9.14
Description A Cross-Site Request Forgery (CSRF) issue allows an attacker to delete reviews.
Recommendations For Rich Reviews by Starfish plugin versions <= 1.9.14, update to a version higher than 1.9.14 to resolve the issue.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2021-36861

Affected Products

The Rich Reviews By Starfish